Featured
# AI/ML Security
# Web Security
# Beginner's Guide
# Beginner Content
A Beginner's Guide to AI/ML Bug Hunting

Dan McInerney
Between Two Vulns: AI Security Headlines You Can’t Ignore + Meet Our New Threat Researcher
Marcello Salvati & Dan McInerney
Between Two Vulns: Llama 4 Drama, Gemini 2.5 Breakthroughs, and the MCP Takeover
Dan McInerney & Marcello Salvati
Between Two Vulns: AI Co-Scientists—Revolution or Security Nightmare?
Dan McInerney & Marcello Salvati
Collections
All Collections
All Content
Popular topics
# Between Two Vulns
# AI/ML Security
# Beginner Content
# Community
# Huntr Spotlight
# Bug Bounty Tips
# LLMs
# Model File Vulnerability
# AI News
# Remote Code Execution
# AI Model File Formats
# AI Agents
# MLflow
# Server-Side Request Forgery
# Model Format Vulnerability
# Beginner's Guide
# Web Security
# Arbitrary File Overwrite
# Hugging Face
# ChuanhuChatGPT

Madi Vorbrich · Apr 18th, 2025
Some people skipped online classes during lockdown to binge Netflix. Arun Krishnan skipped them to hack around on cheats for an online game—and ended up chasing bug bounties. This month, we're spotlighting Arun, aka winters0x64.
# Bug Bounty Tips
# Community
# Huntr Spotlight
Like
Comment


Dan McInerney & Marcello Salvati · Mar 31st, 2025
In this bonus episode of Between Two Vulns, we pick up right where we left off last month—only this time, we’re letting AI run the lab (uh-oh). We’re chatting about how AI co-scientists might spark real scientific breakthroughs, the security black holes in agent-based architectures, and whether humanity is truly ready for an AI that can do all our chores. Spoiler: we’re not.
# Between Two Vulns
# AI News
# AI/ML Security
# AI Agents
Like
Comment

Ethan Silvas · Mar 31st, 2025
# AI Model File Formats
# Model File Vulnerability
# Model Format Vulnerability
# Python
# TensorFlow
# Keras Lamda Layers
Like
Comment

Ethan Silvas · Mar 4th, 2025
# Pickle Deserialization
# Bug Bounty Tips
# PyTorch
# Model File Vulnerability
# AI Model File Formats
Like
Comment



Dan McInerney, Marcello Salvati & Ethan Silvas · Mar 4th, 2025
Hunker down, hackers—AI benchmarks just broke another record, quantum computing chips are threatening your GPU’s existence, and rumor has it Arnold might make a comeback (we kid, we kid). In this episode, Dan and Marcello dissect how AI is evolving faster than we can say “prompt injection.” Then Ethan steps in with a killer breakdown of Model File Vulnerabilities (MFVs) on huntr—perfect for those of you itching to exploit the next big bounty target.
# Between Two Vulns
# Model File Vulnerability
# AI News
# Beginner Content
# Bug Bounty Tips
Like
Comment
Today, we introduce Vulnhuntr, a Python static code analyzer that leverages the power of large language models (LLMs) to find and explain complex, multistep vulnerabilities.
# Vulnhuntr
# Remote Code Execution
# LLMs


Dan McInerney & Marcello Salvati · Jan 28th, 2025
Kicking off 2025, Dan and Marcello cover the latest in AI security:
🔹 NVIDIA’s Project Digits: A $3K supercomputer for running LLMs locally and securely.
🔹 OpenAI GPT-03: The model beating human performance on Arc AGI.
🔹 AI agents: Will 2025 be the year they replace employees?
🔹 Prompt injection: Why it’s still the #1 LLM security risk.
# Between Two Vulns
# Prompt Injection
# AI Agents
# AI News
Like
Comment


Dan McInerney & Marcello Salvati · Jan 9th, 2025
2024’s been a wild ride y'all, and we’re breaking it all down in this Between Two Vulns finale:
💥 OpenAI drops a $200/month GPT Pro plan—worth it or a cash grab?
đź’Ą Anthropic tries to standardize agents with their Model Context Protocol.
💥 Google’s quantum chip solves problems that would take septillion years (and maybe proves the multiverse is real).
Then Ethan walks us through exploiting Keras Lambda vulnerabilities, and we close with shoutouts to the huntrs who crushed it this year. 🏆
# Between Two Vulns
# AI/ML Security
# AI Model File Formats
Like
Comment


Dan McInerney & Marcello Salvati · Dec 2nd, 2024
# Between Two Vulns
# Model Format Vulnerability
# Model File Vulnerability
# Beginner Content
Like
Comment


Madi Vorbrich & m0kr4n3 · Nov 5th, 2024
# Community
# Huntr Spotlight
# XSS Vulnerability
# Beginner Content
Like
Comment
Popular